Scan, analyze, understand, fix. The AI step is what makes it different.
Add domains, IPs, or CIDR ranges as targets. Organize subdomains under parent domains. PTK tracks your entire attack surface across every scan.
Choose a preset or pick specific tools. Run single scans, bulk scan 500 targets at once, or schedule recurring checks automatically with cron.
Every scan automatically generates a plain-language briefing — what was found, why it matters, and exactly what to fix first. No digging required.
Get copy-paste fix instructions per finding. Mark findings as resolved. Watch your security score improve over time. Export professional reports.
Every scan produces intelligence, not just data. Four AI layers built directly into the platform — no add-ons, no extra cost, no setup.
Every tool pre-integrated, pre-configured with sane defaults, and producing structured findings. Intelligence tools run passively — no traffic sent to your target.
When you download a PDF, CSV, or JSON report, the AI analysis comes with it — plain-language summaries, priority actions, and fix instructions per finding. Share with your client without rewriting anything.
Upload a list of targets or paste them directly. PTK fans out across Celery workers in smart batches — fast tools run immediately, slow tools queue intelligently. Watch per-target progress in real time.
Schedule scans with cron — daily, weekly, monthly, or custom. Get email alerts on new critical findings. Your dashboard explains what changed and why, every morning.
Group subdomains under their parent domain. Every target gets its own score, finding history, and scan timeline. Run subfinder and bulk-scan the discoveries in two clicks.
The subfinder flow is PTK's most powerful feature. Discover, organize, and bulk scan your entire subdomain landscape automatically.
We're honest about the tradeoffs. The AI rows are where PTK is genuinely different.
| Feature | PTK | Intruder | Pentest-Tools | Astra |
|---|---|---|---|---|
| Free to start | ✓ Yes | ✗ Paid only | Trial only | ✗ Paid only |
| Cost | Free plan | $260–2,880/yr | Credit-based | $1,999+/yr |
| AI scan insights | ✓ Built-in | Partial | ✗ | ✗ |
| AI remediation | ✓ Per-finding | ✗ | ✗ | ✗ |
| AI daily briefing | ✓ Yes | ✗ | ✗ | ✗ |
| AI in reports | ✓ Yes | ✗ | ✗ | ✗ |
| Raw tool output | ✓ Full access | ✗ Hidden | Partial | ✗ Hidden |
| Full tool config | ✓ Full | Limited | Limited | Limited |
| Bulk 500 targets | ✓ Yes | Limited | Limited | Limited |
| Subfinder flow | ✓ Built-in | ✗ | ✗ | ✗ |
| Scheduled scans | ✓ Yes | ✓ Yes | ✓ Yes | ✓ Yes |
| PDF reports | ✓ Yes | ✓ Yes | ✓ Yes | ✓ Yes |
| Team collaboration | Roadmap | ✓ Yes | ✓ Yes | ✓ Yes |
| Compliance reports | Roadmap | ✓ Yes | Partial | ✓ Yes |
Not a compliance checkbox. A working tool for working security professionals.
No installation. No configuration. Open your browser, start scanning, get AI insights.
Sign up in seconds. No credit card required. Your account is ready immediately.
Add domains, IPs, or CIDR ranges. Organize them into groups by client or project.
Pick a preset, launch. Results appear in real time. AI analysis starts automatically.
AI explains every finding — what it means, why it's dangerous, and how to fix it.